发明名称 METHOD FOR DETECTING MALICIOUS BEHAVIOR PATTERN CONSIDERING CONTROL FLOW AND DATA FLOW BY JUDGING MATCHING OF TOCKEN VALUES
摘要 PURPOSE: A method for detecting a malicious behavior pattern considering a control flow and a data flow is provided to improve an accuracy of the malicious behavior detection by excluding an affirmative error and lowering a negative error generated from the variable name comparison. CONSTITUTION: A control flow graph is generated by reading a given script(S610). The duplication/constant propagation is performed through a data flow analysis on the generated control flow graph(S620). The malicious behavior pattern detection is performed(S630). When it is judged that two token values existing in two sentences are identical with each other, an algorithm using the obtained control flow graph is used.
申请公布号 KR20040080846(A) 申请公布日期 2004.09.20
申请号 KR20030016209 申请日期 2003.03.14
申请人 AHNLAB, INC.;HONG, MAN PYO 发明人 CHO, SI HAENG;HONG, MAN PYO;LEE, SEONG UK
分类号 G06F17/22;G06F11/30;G06F21/00;(IPC1-7):G06F17/22 主分类号 G06F17/22
代理机构 代理人
主权项
地址